当前位置:网站首页>A mining of edu certificate station
A mining of edu certificate station
2022-07-04 23:10:00 【Hetian network security laboratory】
Preface
lately edusrc New certificate , This cannot be arranged for him .
Set goals
Information collection without words , Open it directly fofa, Use the syntax title="XXX university ", Found a system

See the login box , Maybe everyone will blow up the weak password first , Maybe my face is black , I have never been able to burst out in this way , So I prefer to test unauthorized access , Here I casually input an account number and password

Return to grab the return package of this interface , Back in the bag 500

Here I change it to 200 , Can enter the system , But there is no data information

And then I just F12 View the source code , Found a route ,/EmployeeManager, Splice it behind the website
visit

【---- Help network security learn , All the following learning materials are free ! Add weix:yj009991, remarks “ csdn ” obtain !】
① Thinking map of the growth path of Network Security Learning
② 60+ Network security classic common toolkit
③ 100+SRC Vulnerability analysis report
④ 150+ Network security attack and defense technology ebook
⑤ The most authoritative CISSP Certification test guide + Question bank
⑥ super 1800 page CTF Practical skills manual
Direct unauthorized access , Moderately dangerous , I originally wanted to submit it manually , But look at the certificate exchange conditions , Get two medium risks , It's not to embarrass me , There is no way to continue working overtime , So I used the user name and password I just got to log in

There is a personal commitment after logging in , You need to agree to the next step , Click OK to capture the package


The interface returns the user's ID card and password , And then EmployeeID=000005 Change to 000006


Another level of ultra vires , Leaked user sensitive information , Moderate risk should be stable , Then I noticed that this system distinguishes between the administrator and the ordinary user , A front-end can choose the role type to log in , Then I thought about whether I could log in with the account and password of ordinary users , Then exceed the authority of the administrator , Capture packets when logging in

Intercept the return packets of this interface

hold QX Change to administrator , And then put the bag

You can see that you have overstepped your authority and become an administrator
end
Are very conventional loopholes , The most important thing is to be careful .
More range experiments 、 Network security learning materials , Please click here >>
https://www.hetianlab.com
边栏推荐
- Redis: redis transactions
- ECS settings SSH key login
- Redis入门完整教程:Redis使用场景
- Redis入门完整教程:客户端通信协议
- Redis入门完整教程:有序集合详解
- MP进阶操作: 时间操作, sql,querywapper,lambdaQueryWapper(条件构造器)快速筛选 枚举类
- Tweenmax emoticon button JS special effect
- One of the commonly used technical indicators, reading boll Bollinger line indicators
- SPH中的粒子初始排列问题(两张图解决)
- P2181 对角线和P1030 [NOIP2001 普及组] 求先序排列
猜你喜欢

Google Earth engine (GEE) - tasks upgrade enables run all to download all images in task types with one click

Redis入门完整教程:键管理

PS style JS webpage graffiti board plug-in

Redis入门完整教程:有序集合详解

Excel 快捷键-随时补充

Qt加法计算器(简单案例)

Install the gold warehouse database of NPC

Redis introduction complete tutorial: slow query analysis

EditPlus--用法--快捷键/配置/背景色/字体大小

小程序vant tab组件解决文字过多显示不全的问题
随机推荐
【ODX Studio編輯PDX】-0.2-如何對比Compare兩個PDX/ODX文件
Attack and defense world misc advanced area can_ has_ stdio?
Photoshop批量给不同的图片添加不同的编号
[roommate learned to use Bi report data processing in the time of King glory in one game]
Redis入门完整教程:Redis Shell
D3.js+Three. JS data visualization 3D Earth JS special effect
【爬虫】数据提取之JSONpath
剑指 Offer 68 - I. 二叉搜索树的最近公共祖先
Redis入门完整教程:Redis使用场景
Attack and defense world misc advanced zone 2017_ Dating_ in_ Singapore
Redis入门完整教程:Bitmaps
剑指 Offer 65. 不用加减乘除做加法
Complete tutorial for getting started with redis: bitmaps
Sword finger offer 65 Add without adding, subtracting, multiplying, dividing
VIM editor knowledge summary
Photoshop batch adds different numbers to different pictures
ScriptableObject
Qt加法计算器(简单案例)
Common methods in string class
Redis getting started complete tutorial: Geo